htmly v2.9.6 was discovered to contain an arbitrary file deletion vulnerability via the delete_post() function at admin.php. This vulnerability allows attackers to delete arbitrary files via a crafted request.
| Software | From | Fixed in |
|---|---|---|
| htmly / htmly | 2.9.6 | 2.9.6.x |